Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fv5g-wf76-67g3

Опубликовано: 05 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

In CKSource CKFinder before 2.5.0.1 for ASP.NET, authenticated users could download any file from the server if the correct path to a file was provided.

In CKSource CKFinder before 2.5.0.1 for ASP.NET, authenticated users could download any file from the server if the correct path to a file was provided.

EPSS

Процентиль: 15%
0.00049
Низкий

5 Medium

CVSS3

Дефекты

CWE-22
CWE-23

Связанные уязвимости

CVSS3: 5
nvd
2 месяца назад

In CKSource CKFinder before 2.5.0.1 for ASP.NET, authenticated users could download any file from the server if the correct path to a file was provided.

CVSS3: 5
debian
2 месяца назад

In CKSource CKFinder before 2.5.0.1 for ASP.NET, authenticated users c ...

EPSS

Процентиль: 15%
0.00049
Низкий

5 Medium

CVSS3

Дефекты

CWE-22
CWE-23